SecPod

Learn Search

Search across all Learn content

← Back to Security Research
Apple Critical Security Updates January 2022

Apple Critical Security Updates January 2022

Apple critical security update Jan 2022 has released security updates for multiple products. A total of 16 vulnerabilities were addressed. Exploiting some of these security flaws could allow an attacker to take control of an affected system.

Jan 27, 2022By Rinu K3 min read

Apple critical security update Jan 2022 has released security updates for multiple products. A total of 16 vulnerabilities were addressed. Exploiting some of these security flaws could allow an attacker to take control of an affected system.

The release also includes patches for two critical zero-day bugs exploited by attackers in the wild. These vulnerabilities can be tracked as CVE-2022-22587 and CVE-2022-22594. They affect macOS, iOS, iPadOS, and Safari browsers. Endpoints that have not been patched are advised to deploy patches ASAP using any patch management tool.

Apple critical security update Jan 2022 update for macOS includes fixes for 16 vulnerabilities that could allow an attacker to execute arbitrary code with kernel advantage, gain access to restricted files, bypass privacy preferences, gain elevated privileges, corrupt kernel memory, etc. Therefore, a total of 4 vulnerabilities have been fixed in Apple Safari. In brief, successful exploitation of these vulnerabilities will allow attackers to conduct arbitrary code execution, sensitive information report, cross-site scripting attacks.

Zero-Day (CVE-2022-22587)

This January’s security update fixed a critical zero-day memory corruption vulnerability actively exploited in the wild. It exists in IOMobileFrameBuffer(a kernel extension) component of macOS, iOS and iPadOS. Hence, the vulnerability allows an attacker to execute random code with kernel privileges. The vulnerability is reported by Security researchers Meysam Firouzi and Siddharth Aeri.

Zero-Day (CVE-2022-22594)

Another critical zero-day vulnerability in the Safari browser is also fixed in this January’s security update. It exists in the WebKit component of the Safari browser for macOS, iOS, and iPadOS. The flaw is due to a cross-origin issue in the IndexDB API, which web browsers use to manage a NoSQL database of JSON objects. However, the vulnerability allows an attacker to track user browsing activity and identities in real-time. The vulnerability is reported by Security researchers Martin Bajanik of FingerprintJS.

Apple Security Updates Summary for January 2022:

SanerNow VM and SanerNow PM detect these vulnerabilities and automatically fix them by applying security updates. To conclude, use SanerNow and keep your systems updated and secure.

Featured Posts

Open One Request, Total Persistence: Inside the SharePoint Flaw Attackers Are Exploiting
One Request, Total Persistence: Inside the SharePoint Flaw Attackers Are Exploiting

CVE Research

One Request, Total Persistence: Inside the SharePoint Flaw Attackers Are Exploiting

A critical SharePoint deserialization flaw, CVE-2026-50522 (CVSS 9.8), is under active exploitation just weeks after its July 2026 patch, following a public PoC. Attackers are using it to steal IIS machine keys in a single request, gaining persistence that survives patching alone. Now on CISA's KEV list, it's the third actively exploited SharePoint flaw in recent months, patch immediately and rotate machine keys.

Jul 24, 2026

Open ENCFORGE Ransomware: Anatomy of an AI-Focused Cyber Attack
ENCFORGE Ransomware: Anatomy of an AI-Focused Cyber Attack

CVE Research

ENCFORGE Ransomware: Anatomy of an AI-Focused Cyber Attack

Jul 22, 2026

Open UTA0533 Weaponizes KNUCKLEBALL: Inside the SonicWall SMA Zero-Day Exploitation Chain
UTA0533 Weaponizes KNUCKLEBALL: Inside the SonicWall SMA Zero-Day Exploitation Chain

CVE Research

UTA0533 Weaponizes KNUCKLEBALL: Inside the SonicWall SMA Zero-Day Exploitation Chain

Jul 20, 2026

Open One Email, Full Session Takeover: Inside Zimbra's Critical Classic Web Client Code Execution Flaw
One Email, Full Session Takeover: Inside Zimbra's Critical Classic Web Client Code Execution Flaw

CVE Research

One Email, Full Session Takeover: Inside Zimbra's Critical Classic Web Client Code Execution Flaw

Jul 20, 2026

Apple Critical Security Updates January 2022 | SecPod